Splunk Search

Splunk Search
Community Activity
danielbb
On our primary search head max_searches_per_cpu is set to 6. I wonder if it’s a good effective set-up. Where can I fi...
by danielbb Motivator in Splunk Search 12-31-2019
0 7
0
7
russell120
I'm using the following search with timechart span=1h to show how many events appear by the day and hour: |inputlook...
by russell120 Communicator in Splunk Search 12-31-2019
0 7
0
7
UMDTERPS
Hello, Currently we have a scoring for our systems that counts each server, router, switch, firewall, workstation, e...
by UMDTERPS Communicator in Splunk Search 12-31-2019
0 8
0
8
lucas4394
We found there were some savedsearches deleted for some reasons. Is it a way to find out who deleted the savedsearch...
by lucas4394 Path Finder in Splunk Search 12-31-2019
0 2
0
2
rakesh635
I am using jenkins's splunk plugin version 1.6.3(latest). I have configured no executor in master, so no possibility ...
by rakesh635 Engager in Splunk Search 12-31-2019
3 14
3
14
yepyepyayyooo
Greetings good people, i may be over thinking things or didn't get enough sleep. I need to return results where a fi...
by yepyepyayyooo New Member in Splunk Search 12-30-2019
0 6
0
6
komalg
Hi, I am trying to conditionally add records to my table with a slight modification to the data. for example Date ...
by komalg New Member in Splunk Search 12-30-2019
0 3
0
3
yograjpatel
Need help to extract the Phone number callForwardSelectiveDetails\":{\"description\":\"New Years Temp\",\"action\":f...
by yograjpatel New Member in Splunk Search 12-30-2019
0 9
0
9
sergeimartao
I created several objects with my local splunk user and everything is working as expected. I need to share all items ...
by sergeimartao Explorer in Splunk Search 12-30-2019
0 3
0
3
palisetty
I have written the query index="main" host="web_application" | stats count by status The result is: status c...
by palisetty Communicator in Splunk Search 12-30-2019
0 1
0
1
genesiusj
Hello, Here's the problem. Dashboard - Time picker is used to select a date range. But this date range is not check...
by genesiusj Builder in Splunk Search 12-30-2019
0 2
0
2
lucas4394
I have a recipient field containing a list of recipient delimited by a comma. What is the best way to calculate the t...
by lucas4394 Path Finder in Splunk Search 12-30-2019
0 1
0
1
aamer86
I want to show the count of logs where a string appeared I have a string and need to know how many times it appears...
by aamer86 Path Finder in Splunk Search 12-30-2019
0 15
0
15
komalg
Hello, Have a question for the community: I have a table that looks like this: ADate Type 2019-12...
by komalg New Member in Splunk Search 12-30-2019
0 2
0
2
karthikmalla
Hello, I am aware of the following search syntax field1 = *something* field1 = field2 field1 != field2 But I wis...
by karthikmalla Explorer in Splunk Search 12-30-2019
0 8
0
8
indeed_2000
Hi I have log file like this: 09:04:04.042 module1: F[6]L: IN 09:04:01.417 module1: F[6]L: OUT 09:04:01.418 module...
by indeed_2000 Motivator in Splunk Search 12-30-2019
0 7
0
7
palisetty
I have two fields on the event list. I have used Top command for that, I have got two fields and count and percent. ...
by palisetty Communicator in Splunk Search 12-30-2019
0 1
0
1
ahmadshakir1952
I have data in three source types to co-relate. Time and a unique identifier number are common for all three sourcety...
by ahmadshakir1952 Explorer in Splunk Search 12-29-2019
0 1
0
1
palisetty
Why is that Index field doesn't appear in Selected Fields? It is appearing in interesting fields. index="homework_hos...
by palisetty Communicator in Splunk Search 12-29-2019
0 3
0
3
kryzew
Hi, I' cant end my search using metasearch when I need to find in index something with space betwen like "Microsoft ...
by kryzew Explorer in Splunk Search 12-29-2019
0 5
0
5
yamini_37
can you please help me in writing SPL query for the below scenario. I want to calculate delta of success rate of a pa...
by yamini_37 Path Finder in Splunk Search 12-29-2019
0 6
0
6
palisetty
How would I display the following data which is part of CSV file? I am looking for a command to do that. top is not w...
by palisetty Communicator in Splunk Search 12-28-2019
0 7
0
7
shivanandbm
HI Splunkers, I see that swap being used and swap memory not getting released even though RAM is free.can you please...
by shivanandbm Explorer in Splunk Search 12-27-2019
0 0
0
0
HackerHurricane
I am trying to read the DETAILS: section of the Powershell logs in Splunk to produce reports and split out each line:...
by HackerHurricane Engager in Splunk Search 12-27-2019
0 3
0
3
khandelwaly
Hi Team, I want to show comparison graph of jenkins pipeline steps between two jenkins build. How can i get it? i am...
by khandelwaly Explorer in Splunk Search 12-27-2019
0 1
0
1
Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Character substitutions with Regular Expressions

This challenge was first posted on Slack #puzzles channelFor BORE at .conf23, we had a puzzle question which ...

Splunk Community Badges!

  Hey everyone! Ready to earn some serious bragging rights in the community? Along with our existing badges ...

[Puzzles] Solve, Learn, Repeat: Matching cron expressions

This puzzle (first published here) is based on matching timestamps to cron expressions.All the timestamps ...